securityonline.info 7/22/2026, 7:09:07 PM · external

CVE-2026-64600 XFS Race Flaw Exposes Millions of Linux Systems

CVE-2026-64600 XFS Race Flaw Exposes Millions of Linux Systems
CyberSIXT Evidence Panel
Primary Source blog.qualys.com
CISA KEV Not in KEV
Patch Patch Status Unknown

THE page discusses the critical CVE-2026-64600 vulnerability in the Linux kernel's XFS filesystem, disclosed by Qualys on July 22, 2026. This privilege escalation flaw potentially affects over 16.4 million systems, particularly those running Red Hat Enterprise Linux and its clones. Standard defenses fail to mitigate this issue as it exploits weaknesses below memory protection layers. The attack involves a race condition allowing unprivileged users to overwrite protected files.

Though a proof-of-concept exists, no confirmed exploits are reported. Systems should be promptly patched, as the fix has been integrated into the Linux kernel.

View Primary Source Via securityonline.info

Article by CyberSIXT